Legal

Privacy Policy

Last updated: September 2026

The short version: TicketBrain has no accounts and never asks for your name, your email or your bank. Your receipts, coupons and budget live in a database on your own phone. The only thing that leaves your device is the photo of a receipt, which is read once to pull out the lines and is never stored by us.

Who We Are

TicketBrain is a grocery receipt scanning app built and run by one independent developer, not a company. Under the GDPR, that developer is the data controller for the limited processing described here. You will find the contact details at the end of this page.

What Stays On Your Phone

All of this is stored in a local database on your device and is never sent to us:

  • Your receipts: the store, the date, the total, and every line item with its price and category
  • Your coupons, including the photos you take of them
  • Your monthly budget, your household size and the goals you chose during setup
  • Your settings: language, notification permissions and reminder preferences

We hold no copy of any of it. We cannot read it, we cannot recover it for you, and we have nothing to hand to anyone else. If you delete the app, it is gone. That is also why the app has an export button: that export is the only backup that exists.

The Receipt Photo

This is the one thing that leaves your phone. When you scan a receipt or a coupon, the photo is sent over an encrypted connection to our server, held in memory while an AI model reads the lines off it, and the extracted text comes straight back to your phone.

The image is never written to disk, never added to a database and never kept after the response is sent. There is no archive of your receipts on our side to lose, leak or be asked to hand over.

A randomly generated identifier travels with the request so that we can cap how many scans come from a single installation and keep the service usable for everyone. It is created on your phone, it is not derived from your device or from you, and it is not linked to anything else. It exists only in memory, for a rolling window of a few hours.

Usage Analytics

The app reports anonymous usage events so that we can tell which parts work and which are broken. This runs on Google Firebase Analytics.

What we send is limited to named events and coarse aggregates, for example: a scan was started, a receipt was parsed and how many line items it had, a coupon was saved, a setting was changed, the app language, whether notifications are allowed, and a range for how many receipts you have saved (such as "6-20") rather than the number itself.

What we never send: the amounts you spend, the names of the stores, the names of the products, the receipt photos, your budget figure, your email, your name, or any identifier we could use to find you. There is no account to attach any of it to.

Firebase assigns its own app installation identifier and records the device model, the operating system version and an approximate country. That is Google's standard collection for any app that uses it, and it is governed by Google's own privacy terms.

You can turn all of this off in the app, under Settings, and it stays off. Uninstalling the app also ends it.

What We Never Do

  • We never connect to your bank. There is no account linking and no open banking provider in the middle.
  • We never sell your data, and we never share your shopping habits with brands, retailers or data brokers. There is no cashback deal funding this app.
  • We run no advertising and embed no advertising or tracking SDKs.
  • We build no profile of you for marketing, and we make no automated decisions that produce legal effects for you.

Who Processes Data For Us

Three providers are involved, each for one narrow job:

  • Railway Corp. hosts the server that receives the photo and passes it on. It runs in Railway's Amsterdam region, inside the European Union.
  • Anthropic PBC reads the receipt photo through the Claude API and returns the extracted lines. The image is sent for that purpose and nothing else.
  • Google Ireland Limited provides Firebase Analytics for the anonymous usage events described above.

Our server is in the European Union. The receipt photo is sent to Anthropic in the United States to be read, and is not stored there. Firebase Analytics is operated by Google, which may process the anonymous events on infrastructure outside the European Union. Both of those transfers rely on the European Commission's Standard Contractual Clauses, included in the providers' terms.

How Long Data Is Kept

The receipt photo: not kept at all. It exists in server memory for the seconds the scan takes and is discarded when the response is sent.

The anonymous scan identifier: a few hours in memory, then discarded. It is also lost whenever the server restarts.

Analytics events: retained by Google Firebase for the period configured in our Firebase project, after which Google deletes them.

Everything else: for as long as you keep the app installed, on your phone, under your control.

Your Data, Your Control

Because your data lives on your device rather than in an account, most of what the GDPR gives you is something you can do yourself, immediately, without asking us:

  • Export everything: Settings has an export button that writes all your receipts and coupons to a file you can save or send wherever you like.
  • Correct anything: every receipt and coupon can be edited after scanning, and nothing is saved until you have reviewed it.
  • Delete anything: remove individual receipts and coupons from the app, or delete the app to erase all of it at once.
  • Turn off analytics: one switch in Settings stops the anonymous usage events.

Your Rights Under GDPR

You have the right to access your personal data, to have inaccurate data corrected, to have your data erased, to receive it in a portable format, to object to processing and to restrict it.

In practice we hold almost nothing to exercise these against, which is the point of the design. For anything that remains, write to us at the address below and we will answer within one month.

Children

TicketBrain is not aimed at children and we do not knowingly process data from anyone under 14.

Changes To This Policy

If what the app does with your data changes, this page changes first, with a new date at the top. We will not quietly start collecting something this policy does not mention.

Contact Us

If you have any questions about this Privacy Policy or wish to exercise your rights, please contact us at:

Email: hello@ticketbrain.app
Barcelona, Spain

If you believe we have not addressed your concerns adequately, you may contact the Spanish Data Protection Authority (AEPD) at www.aepd.es